# GitLab — API Agent Score

> Score: 80/100 (Grade: A) | Domain: gitlab.com | Rubric: 1.0.0 | Checked: July 24, 2026

GitLab scored 80/100 (A), classified "ai-ready".

[View full report](https://www.postman.com/ai/ai-ready-apis/company/gitlab)
[All organizations](https://www.postman.com/ai/ai-ready-apis/llms.txt)

## Summary

- Overall: 80/100 (A)
- Classification: ai-ready

## Category Scores

- API Design: 94/100 (A+)
- Developer Experience: 66/100 (C)
- Agent Discovery: 79/100 (B)
- Agent Understanding: 77/100 (B)
- Agent Usability: 84/100 (A)

## Check Results

### API Design

- [pass] Schema coverage & depth — 44/44 (100%) public params are fully typed (no any/**kwargs). Analyzer confirms all methods have a derivable input schema. Investigated: sdk 100%, spec 67%.
- [pass] Auth declared & discoverable — Authentication required (global or on every operation). Investigated: spec 100%, docs 100%, wellknown 100%.
- [warn] Machine-readable, versioned contract — info.version="v4" set but no versioning scheme (URL / header / media type) detected. Investigated: spec 75%, docs 50%.
- [pass] Security & governance hygiene — No credential-shaped strings detected in spec. Investigated: spec 100%, wellknown 100%.
- [pass] Example coverage — README is present and includes a runnable quickstart. Investigated: sdk 100%, spec 0%, docs 0%.

### Developer Experience

- [pass] Self-service developer portal — Signup page at https://gitlab.com/signup (CSR-rendered — body classifier inconclusive); free tier / sandbox documented in pricing/docs. Investigated: docs 100%.
- [pass] Description completeness — 90% of operations + parameters have substantive descriptions. Investigated: spec 100%, sdk 88%.
- [pass] Changelog published — changelog documented in the docs site at https://docs.gitlab.com/user/analytics/dora_metrics_charts/. Investigated: spec 100%, docs 100%, sdk 100%.
- [fail] Quickstart present — No quickstart/getting-started page found at the conventional paths. Investigated: docs 0%.
- [fail] Code samples in docs — No detectable code samples across 20 sampled docs pages. Investigated: docs 0%.

### Agent Discovery

- [pass] Registry & SDK presence — Indexed on Context7 (websites/gitlab_19_1, 60829 snippets). Investigated: docs 100%, sdk 100%, mcp 100%, cli 50%, wellknown 0%.
- [warn] Docs reachable, not hard auth-gated — Server ignores Accept: text/markdown header (0/50 sampled pages return markdown). Investigated: docs 75%.
- [warn] llms.txt present, valid & comprehensive — No llms.txt directive found in HTML of any of 50 sampled pages. Investigated: docs 44%, sdk 0%.
- [pass] Crawlable / AEO — Docs paths crawlable by all monitored AI agents. Investigated: wellknown 100%.

### Agent Understanding

- [pass] Machine-readable errors (RFC 9457) — 16 distinct 4xx/5xx response codes documented. Investigated: spec 100%, docs 100%, sdk 50%.
- [pass] Operation purpose clarity — 100% of operations have a clear summary + operationId an agent can select on. Investigated: spec 100%.
- [warn] Agent-navigable, token-efficient docs — 1 of 50 pages have substantive content differences between markdown and HTML (avg 2% missing). Investigated: docs 60%.
- [warn] Docs structured data — OpenGraph/meta tags only across 20 assessed pages — no JSON-LD for answer engines to cite. Investigated: docs 50%.
- [warn] Description consistency across surfaces — Mean pairwise description similarity across 3 surfaces (spec, docs, sdk) is 9% (threshold 35% for full credit).
- [fail] Agent instructions file (AGENTS.md) — No AGENTS.md at the site root or /.well-known/. Investigated: wellknown 0%.

### Agent Usability

- [pass] Idempotency documented — Built-in retry machinery is present (grep-derived). Investigated: sdk 100%, spec 0%, docs 0%.
- [pass] Rate-limit signaling — rate-limit behavior documented in the docs site at https://docs.gitlab.com/security/rate_limits/. Investigated: spec 100%, docs 100%.
- [pass] Pagination documented & consistent — Pagination params detected on 3 list endpoint(s). Investigated: spec 100%, docs 100%.
- [warn] Sandbox separation — No test-mode flag or sandbox environment is exposed. Investigated: sdk 50%, spec 0%, docs 0%.
- [fail] Runnable collection with test scripts — No public Postman workspace discovered for the org. Investigated: platform 0%.

## Executive Summary

GitLab's API program shows strong fundamentals in API design and agent usability, with a well-structured machine-readable contract already in place. The two areas most likely to slow partner momentum are agent understanding — specifically the absence of an AI-agent instructions file and inconsistent onboarding materials — and runnable usability, where partners and their agents lack executable, test-backed collections to build against confidently. Prioritizing these gaps will materially accelerate how quickly partners and their AI agents can find, understand, and ship integrations against GitLab's API surface.
